pkg.sopackage field notes

brew / rank 761

Install doctl with Homebrew

Command-line tool for DigitalOcean. Version 1.166.0 via Homebrew; verified 2026-07-31.

agent safety

Agent safety answer

doctl controls DigitalOcean resources from local credentials.

Credential access

Reads DigitalOcean tokens, kubeconfig, and environment credentials.

Remote mutation

Can create, delete, and modify droplets, clusters, registries, and apps.

Publish/artifact risk

Can deploy apps and push container registry artifacts.

Recommended control

Gate mutating doctl commands and credential access.

Agent-use guidance

Allow read-only listings; require approval for writes, deletes, deploys, and token changes.

install

Additional install commands

macOS

Homebrewverified ยท 100%
brew install doctl

provider-native install command

overview

Package summary

Command-line tool for DigitalOcean

Commands and aliases

  • doctl

history

Project history and usage

doctl is DigitalOcean's official command-line interface for the DigitalOcean API. It is the package-manager-facing form of DigitalOcean cloud automation: a Go binary that exposes account, compute, database, Kubernetes, registry, app, VPC, and billing workflows from a terminal.

Project history

DigitalOcean created the public GitHub repository in May 2015. The README identifies doctl as a CLI for the DigitalOcean API and lists a broad command tree covering both early compute primitives and later platform services such as Kubernetes, Apps, databases, monitoring, registries, and VPCs.

Adoption history

doctl has broad package-manager adoption. The official README documents Homebrew on macOS, Snap on supported Linux systems, Arch Linux, Fedora, Nix, Docker Hub images, GitHub release downloads, and source builds. Homebrew analytics show tens of thousands of annual installs, which is high for a provider-specific cloud CLI.

How it is used

Users authenticate with `doctl auth init`, which stores API tokens and defaults in a YAML config file. The CLI is used both interactively and in scripts, often with JSON output, shell completion, multiple authentication contexts, and resource commands such as droplet listing, domain record creation, registry login, and Kubernetes configuration.

Why package nerds care

doctl matters to package nerds because it is a well-maintained example of the cloud-provider CLI pattern: a single static Go program, packaged across Homebrew, Linux distros, Snap, Windows managers, Docker images, and GitHub releases, with API authentication and shell ergonomics as first-class concerns.

Timeline

  • 2015: Public GitHub repository created.
  • 2010s: README documents install routes across Homebrew, Snap, distro packages, Docker Hub, and GitHub releases.
  • 2026-06: v1.163.0 published with release assets for macOS, Linux, Windows, checksums, and source.

Related projects

  • doctl is tied to the DigitalOcean API and Control Panel. Its README also documents integration points with kubectl, Docker registry credentials, shell completion, and Docker Hub images.

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for doctl. Nucleus package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

macOS
~/Library/Application Support/doctl/config.yaml
Unix
$XDG_CONFIG_HOME/doctl/config.yaml~/.config/doctl/config.yaml

Credential files

Credential-bearing paths to review before unattended agent runs.

macOS
~/Library/Application Support/doctl/config.yaml
Unix
$XDG_CONFIG_HOME/doctl/config.yaml~/.config/doctl/config.yaml

executables

Installed executables

CommandKindExposureNote
doctlexecutableindexed executableDiscovered from the local executable index.

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-03
manager version1.166.0
manager updated2026-07-31
local dataunknown
upstreamnot available
latest detectednot detected
  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:doctl
Version1.166.0
Package managerHomebrew
Homepagehttps://docs.digitalocean.com/reference/doctl/
Repositoryhttps://github.com/digitalocean/doctl
Last updated2026-07-31T17:48:15Z
Pulseupdated
Bottlenot recorded
Servicenone declared

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • Nucleus package database
  • curated agent safety answer
  • curated configuration and credential file locations
  • curated package history
  • pkgdb category and tag curation